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Abstract 

While the question "how many CNOT gates are needed to simulate an arbitrary two- 
O ■ qubit operator" has been conclusively answered - three are necessary and sufficient - pre- 

vious work on this topic assumes that one wants to simulate a given unitary operator up to 
^ global phase. However, in many practical cases additional degrees of freedom are allowed. 

p • For example, if the computation is to be followed by a given projective measurement, many 

dissimilar operators achieve the same output distributions on all input states. Alternatively, 
Ch I if it is known that the input state is |0), the action of the given operator on all orthogonal 

^ ' states is immaterial. In such cases, we say that the unitary operator is incompletely spec- 

Q^. ified; in this work, we take up the practical challenge of satisfying a given specification 

with the smallest possible circuit. In particular, we identify cases in which such operators 
can be implemented using fewer quantum gates than are required for generic completely 
specified operators. 
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1 Introduction 

Quantum circuits offer a common formalism to describe various quantum-mechanical ef- 
fects and facilitate a unified framework for simulating such effects on a quantum computer 
m . The framework consists of two steps: (1) for a given unitary evolution, find a quantum 
circuit that computes it, (2) implement this circuit on a quantum computer. The first step 
is sometimes called quantum circuit synthesis 13, and is the focus of our work. Given that 
existing physical implementations are severely limited by the number of qubits, a consid- 
erable effort was made recently to synthesize small two-qubit circuits ||3l|4l|5l|6lEl. It has 
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been shown that for such a circuit to implement a typical two-qubit operator, three CNOT 
gates ai^e needed. However, this result was proven under the assumption that we know 
nothing about the circuit surrounding the given two-qubit operator. Thus, in the event that 
we have additional information, say the state of the input qubits or the basis in which the 
result of the computation is to be measured, the result no longer holds. In fact, we show 
that if the input state is |0), then three one-qubit gates and one CNOT suffice to simulate an 
arbitrary two-qubit operator. We also show that if a projective measurement in the compu- 
tational basis follows the two-qubit operator, then it can be implemented by a circuit with 
two CNOTs. 

2 Background 

The following family of "spin flip" or "Oy (g) Oy" results are invaluable in the study of two- 
qubit operators. They are all related in some sense to the fact that a two-qubit pure state 
|(j)) is separable if and only if £(|(|))) := ((|)*|a®^|(|)) = 0. For this reason, |£p is sometimes 
used to measure entanglement. 

Facts about two-qubit operators. 

1. The Magic Basis (Ul^. There exist matrices E e U{4) such that E^S0{4)E = 
SU (2)®^. These are characterized by the property EE^ = a®^. 

2. Tlie Maklilin Invariants JTOl Let u,v e SU{4). Then there exist a,b,c,d G SU{2) 
such that {a®b)u{c (g) J) = v if and only if M^a^^wa®^ and v^af^vof^ have the 
same spectrum. 

3. Tlie Canonical Decomposition UTIIIH Any u G SU (4) can be written in the fol- 
lowing form. 
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Figure 1: A universal two-qubit circuit with three CNOT gates Q. It contains seven one-qubit 
placeholders, which can be translated into 15 placeholders for one-parameter gates. 



Above, a,b,c,d G SU{2) and 9^,9^,6, G R. 

These facts can be used to classify two-qubit pure states up to the action of local uni- 
taries, as shown below, and this result is used later in our work. One can also classify 
mixed states, but the more general result is harder to state ITUl . 

Proposition 1 Let |(j)) and |\|/) be 2-qubit pure states. Then \^) and |\|/) can be inter- 
changed by local unitary operators if and only if\z{\^))\ = |£(|\|/))|. 

Proof: (=^) Suppose first that (|) and \|/ are interconvertible by local unitaries, that is, there 
exist a,b G U{2) such that {a®b)\(Sf) = |\|/). One can check that for m a 2 x 2 matrix, 
m^Oym = Oydetm. Using this to simplify, we have (\|/*|a|'^|\|/) = {^*\{a®bYaf'^{a® 
b)\(Sf) = (deta)(detZj)((j)* |a,,|(t)). The scalar vanishes upon taking absolute value. (<^) 
Conversely, suppose |((|)*|ay aj,|(|))| = |(\|/*|ay (^aylxi/)]. By ignoring global phase, we 
may suppose that in fact ((j)*|av CJv|<t') = (v*|cTj. av|\|/). Changing to the Magic Ba- 
sis transforms the hypothesis into ((|)|(|)) = and the statement we want to prove 
into: there exists p G SO{A) such that p\yif) = |(|)). So, let v G be an arbitrary vector, 
and V = Vr + /v,- be its decomposition into real and imaginaiy paits. Then we see that 
v^v = |vrp — |v;p + 2/v^v;. Since we know v to be a unit vector, v^v encodes the magni- 
tudes of the real and imaginary parts of v, and the angle between them. From this it is clear 
that two unit vectors v,w in can be interchanged by an element of SO (4) if and only if 
v^v = w^w, and we have proven our claim. ■ 

Another important consequence of the Oy ® Oy theorems is the result that an arbitrary 
two-qubit operator can be implemented by a circuit containing three CNOTs and some one- 
qubit gates. It has been proven in various forms EH] 13, of which we need the particular 
one described in Fig. ^ 

3 



It is also known that three CNOT gates are necessary to implement some two-qubit op- 
erators, such as a wire swap |3lSlll- To prove this and other lower bound results, one 
considers generic circuits. These are diagrams with placeholders for unspecified (vari- 
able) gates and may also contain specific (constant) gates. Each placeholder coiTcsponds 
to some subset of possible gates. In this work, all placeholders are for one-qubit gates, 
and all constant gates are either CNOTs or one-qubit gates; we call such circuits basic. 
We label a placeholder for an unspecified element of SU (2) with a lower-case roman let- 
ter, and placeholders for gates of the form Rx{ol), Ry{^), or /?j(y) by Rx,Ry,Rz respec- 
tively. Here, /?„(6) = e'^"^^^. We refer to basic circuits whose only placeholders represent 
Rx,Ry,Rz gates as elementary. The motivation for restricting to elementary circuits is that 
each placeholder has one degree of freedom, which makes dimension counting easier and 
more precise. Moreover, nothing is lost by doing so since any u € SU (2) can be written in 
the form 7?^.(a)/?/(P)/?m(Y) for ^"^y k,l,ni€ {x,y,z},k ^1,1 m. 

We say that an n-qubit generic circuit is universal if, by specifying appropriate values 
for the placeholders, one can obtain a circuit simulating ai^bitrary u £ U (2") up to global 
phase. The dimension of U (2") is 4"; subtracting one for global phase, we see that an ele- 
mentary circuit on n qubits cannot be universal unless there are at least 4" — 1 placeholders. 
Our general strategy for showing that a given incompletely specified circuit is not univer- 
sal is to convert it into an elementary circuit, eliminate as many placeholders as possible 
via circuit identities, and then count gates. For example, the following well-known iden- 
tity is particularly instrumental: the Rx (respectively, R^) gate can pass through the target 
(respectively, conti^ol) of a CNOT gate. 

3 Preparation of Pure States 

The three-CNOT lower bound applies when one must find a circuit to simulate a particu- 
lar given two-qubit operator up to global phase. However, quantum-computational tasks 
arising in applications ai^e often less completely specified, thus they can be performed by 
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a greater variety of quantum circuits. One such task is state prepai^ation. To prepare the 
«-qubit state |(|)) from |0), we can use any operator u (2") with m|0) = e'^|(t)). A poor 
choice of u ensures that u cannot be implemented with fewer than 0(4") gates. However, 
as the dimension of the space of pure states is 2" — 1, the lower bound by dimension count- 
ing techniques described in Section|2lonly indicate that at least [(2" — 'in — l)/4] CNOTs 
are necessary to prepare an arbitrary pure state. ^ We show below that this bound can be 
matched asymptotically by techniques based on the QR decomposition of matrices. 

Proposition 2 Preparing a generic n-qubit pure state from |0) requires 0(2") gates. 

Proof: As shown in fT3l . an arbitrary n-qubit unitary operator can be simulated by a 
circuit containing approximately 8.7 x 4" CNOT gates. Their technique is based on the 
QR decomposition and gives a circuit that builds up a unitary matrix column by column, 
with each of the 2" columns built by a subcircuit containing 0(2") gates. For our present 
purposes, only the subcircuit responsible for the first column is needed. ■ 

Other decomposition algorithms find better circuits for ai^bitrary operators: the best 
currently known yields about 4"/2 CNOTs flU and is a factor of two away from the lower 
bound of [(4" — 3?i — l)/4] given in ||5l. However, as these algorithms do not build ma- 
trices column by column, they do not yield efficient techniques for state preparation. We 
note in passing that a significantly larger gap exists between the upper and lower bounds 
on the number of CNOT gates needed to prepare an arbitrary state, as compared to the cor- 
responding bounds for the problem of simulating an arbitrary unitary operator: in the first 
case, a factor of thirty, in the second, a factor of two.^ 

We now seek optimality results for the task of state preparation in the case of two 
qubits. As two-qubit states can be entangled, at least one use of a two-qubit gate is nec- 
essary to prepare any entangled state. To chai^acterize two-qubit gates which ai^e also suf- 
ficient for this purpose, we use some concepts from algebraic geometry, for whose expli- 
'For more details on the use of these lower bounds methods, see Section 3 of 

^Since the first posting of this paper, several preprints have appeared to address this gap. In particular, it has 
been shown in P14"151 that 2"+' — 2n — 2 CNOT gates suffice to prepare an arbitrary «-qubit state from |0). A 
different technique based on Grover's Search Algorithm also purports to do well in some special cases 1T61 . 
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cation the reader is refen^ed to any introductory textbook, such as (T7\ . We also give an 
explicitly constructive proof of this result in the special case of the CNOT gate. 

Proposition 3 Let G G SU (4). Then an arbitrary pure state |\|/) can be prepared from |0) 
by a circuit containing one-qubit gates and a single gate G if and only if there exists a state 
\^) such that £(|(|))) = and z{G\^)) = 1. 

Proof: {<=) Note that |£(|0))| = 0. Define \B) := (|00) + |ll))/^/2 so |e(|S))| = 1. Sup- 
pose there exist a,b,c,d U (2) such that (a(8)&)G(c(SiJ)|0) = \B). Recalling from Propo- 
sition [2 that one-qubit operators preserve jej, we have |8((c J)|0))| =0, and |8(G(c® 
d)\0))\ = H\B))\ = L 

(^) We note that by Proposition^ it suffices to show that circuits of the form G{c®d) 
can prepare states with arbitrary |£| from |0). Again by Proposition if |(|)) is the state 
given in the hypothesis, then there exist a\,b\ G U{2) such that {a\ ^b\)\0) = |(|)). So, 
£(G(ai ®b\)\0)) = 1. If we show that a state with |8| = can be prepared, it will follow 
by continuity of |£| that arbitrary states can be prepared as well. 

It suffices to show that every two-qubit gate maps some |£| = state to another. For, if 
|(j)) is such a state for G, then we may choose aQ,bo£U (2) such that |(j)) = (ao'X'^o)|0)> and 
see that \e{G{a(g>b)\0))\ =0. Thus it suffices show that£(|(^)) = and £(G(|(^))) =Ohave 
common solutions for all G. Fix G, and fix a basis for the state space. Then, £(|(|))) and 
£(G|(j))) can be seen to be homogenous polynomials in the 4 coordinates (in fact, they are 
quadratic forms). In particular, the zeroes of these polynomials do not depend on global 
phase, so we may speak of their zeroes on the space CP^ of two-qubit pure states modulo 
global phase. It is a fact that any two (nonconstant) homogenous polynomials must have 
common zeroes here (T7i . ■ 

As a single CNOT and a Hadamai^d gate can be used to prepare (|00) + 1 1 1))/ \/2) from 
1 00), the CNOT gate satisfies the hypothesis of the Proposition |3j and therefore a single 
CNOT suffices to prepare an arbitrary two-qubit pure state from |0). We now give a more 
explicit construction in this case. 
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Proposition 4 A two-qubit pure state |(|)) can be prepared from |0) using the one CNOT 
gate and three one-qubit gates. 

Proof: Let C\ be the CNOT gate controlled on the higher qubit and acting on the lower. Let 

c = m|0)(0| +v|l)(0| -v|0)(l| for some m,v G C; one can check that c G SU{1). 

Let (Sfi = (/|(|)). We explicitly compute 

8(Ci (/ c) 1^)) = (^o(^2 (m^ - V^) + 4)i4)3 (V^ -U^)- {(^oh + 4)i4)2) ("V + Vu) 

Making the change of variables z = u^ — v^,'k= {uv + vu), we note that X £ R and \z\^ + 
= 1; we want to solve (|)o<t'2Z — ^\^^z. = {^q^j, +^1^2)'^ for This is a linear system 

with two equations and three unknowns; thus we obtain up to a scalar multiple, and 

can choose the scalar so that |zp + X = 1. 

Let |ri) = Cj(/® c)|(|)) and verify that £(|ri)) = 0. Since jr]) is separable, write it as 

\s)\t). This allows one to define a and b so that {a®b)\Q) = \s)\t). Finally, we can write 

{Wc'^)C\{a®b)\0) = |(|)) as desired. ■ 

4 Measurement Don't-Cares 

Fewer gates are required for state preparation because images of basis states other than 
|0) can be arbitrary (in other words, we are using additional information about the input). 
Similarly, we may be able to save gates if we know in advance how the circuit output will 
be used. In particular, we now suppose that we know the output is to be measured in some 
predetermined basis. 

Suppose we intend to first simulate an operator m on a yet-unspecified input, then take 
a projective measurement with respect to some given orthogonal subspace decomposition 
(C^)®" = ®Ei, and we are interested only in having the measured state appear in a given 
subspace with the appropriate probability. In particulars if v is an operator that preserves 
each subspace Ej, then we do not care whether we implement u or vu. Conversely, if w 
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is any operator which, upon any input, agrees with u after projective measurement with 
respect to the given subspace decomposition, then it is clear that ww^' preserves each 
subspace Ej. If a given circuit simulates some such operator w up to phase, we say that 
this circuit simulates u up to the measurement don't cai^e associated to the given subspace 
decomposition. 

Mathematically speaking, the problem of state preparation is essentially a special case 
of a measurement don't care. To prepare the state |(|)) from |0), it is enough to have any 
operator whose matrix in the computational basis has first column \<^). On the other hand, 
suppose we are interested in simulating some given operator u, then taking a projective 
measurement with respect to two orthogonal subspaces: one spanned by |0) and the other 
by the rest of the computational basis vectors. Then we may replace u with any operator 
V such that (0|m = (0|v; that is, the matrices of u and v must have the same first row in 
the computational basis. Thus the problem of state preparation amounts to specifying a 
single column of a matrix, whereas the aforementioned measurement don't care amounts 
to specifying a single row. Thus Propositions |2j|3l and|4]carry over to this context. 

Proposition 5 To simulate an arbitrary n-qubit operator up to a projective measurement 
onto two subspaces, one of which is one dimensional, at least [(2" — 3?i — l)/4] CNOT 
gates are necessary, and 0(2") CNOT gates are sufficient. For n = 2, one CNOT is neces- 
sary and sufficient. 

Suppose now we have a subspace decomposition and an underspecified circuit S which 
we believe is universal up to the associated measurement don't cai^e - that is, we believe that 
for any u, appropriate specification of parameters gives a circuit simulating an operator w 
such that there exists some operator v preserving the subspace decomposition with vu = w. 
Let T be an underspecified circuit that precisely captures the set of operators that fix the 
subspace decomposition. It is clear that 5 is universal up to the given measurement don't 
care if and only if the concatenated circuit ST is universal. Therefore, as we show below, 
one cannot claim asymptotic savings for this problem in general. 
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Proposition 6 To simulate an arbitrary n-qubit operator up to a projective measurement 
in which each of the subspaces is one-dimensional, at least [(4" — 2" — 3?i)/4] CNOT gates 
are required. 

Proof: First, note that an operator v can be right-multiplied by any diagonal operator 5 
(diagonal in the basis of the measurement) and that the group of diagonal matrices is 2"- 
dimensional. 4" — 2" parameters remain to be accounted for, and the proof of Proposition 

1 of ||51 indicates that (4" — 2" — 3«) /4 CNOT gates are necessary to account for this many 
parameters. ■ 

Given that the best known circuit synthesis technique for «-qubit circuits is still a factor 
of two away from the theoretical lower bound of [(4" — 3?i — l)/4] , it may be difficult to 
detect a savings of 2" gates by analyzing specific circuits. Thus we turn to the two-qubit 
case, where all bounds are known, tight, and small — no more than three CNOT gates are 
required, and a savings of even one gate would be significant. 

On two qubits, there are several different types of measurement possible. We clas- 
sify them by the subspace dimensions, hence we have "3 + 1", "2 + 2", "2 + 1 + 1", and 
"1 + 1 + 1 + 1" measurements. In what follows, we generally require that each subspace is 
spanned by computational basis vectors. We refer collectively to the corresponding mea- 
surement don't-cares as CB-measurement don't-cares. Additionally, when dealing with 

2 + 2 measurements, we assume that one of the qubits is measured; that is, we do not 
consider the decomposition C"^ = span(|00) , 1 11) ) © span(|01) , 1 10) ). Indeed, measuring a 
qubit is a common step in quantum algorithms and communication protocols. 

We have already seen in Proposition |5]that one CNOT is necessary and sufficient in the 

3 + 1 case. We now show that at least two CNOTs are needed in the remaining cases 

Proposition 7 Let = be a CB-subspace decomposition corresponding to the mea- 
surement don't-care M. Suppose no subspace is 3-dimensional, and further that the sub- 
space decomposition is not = {span(|00), 1 1 1)) © span(|01), 1 10)).^ Then there exist 

two-qubit operators that cannot be simulated up to M by a circuit with only one CNOT. 
^In the 2 + 2 case where measurement is performed "across qubits", the key question is whether 
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Proof: First, consider subspace decompositions in which neither span(|00), 1 11)), nor 
span(|01), 1 10)) occur. Remaining cases with 2+1+1 decompositions using one of those 
subspaces are considered separately below. Suppose an operator is universal up to a 1 + 
1 + 1 + 1 or 2+1 + 1 CB-measurement don't-care satisfying the above condition. Then 
combining pairs of 1 -dimensional subspaces into 2-dimensional subspaces, we see that the 
same circuit is universal up to a 2 + 2 CB-measurement don't-care in which one of the 
qubits is measured. Suppose, without loss of generality, that it is the higher order qubit, 
hence that the subspaces are span(|00), |01)) and span(| 10), 1 11)). 

We now compose an arbitrary one-CNOT circuit with a circuit for operators preserving 
the relevant CB-subspaces, as outlined at the beginning of the section (see below-left). 
Conglomerating adjacent gates, we obtain the circuit below-right. 



b ^ d 



e - f 



- b d - f 



We now convert 3-dimensional place-holders to one-parameter gates, pass and R^ through 
CNOT where desirable, and conglomerate adjacent gates again. 



R, 



Rx 



R- 



R. 



R- 



Rx-Rz- Rx Rz - Rx - Rz - - Rz 



As this circuit has 13 one-parameter gates, the circuit we started with cannot be universal. 

The 2 + 1 + 1 cases where the 2-dimensional subspace is span(|00), 1 1 1)) or span(|01), 1 10)) 
can be dealt with similarly. We give the circuits preserving these subspace decompositions 
below; the left circuit corresponds to span(|01), 1 10)) and the right to span(|01), |10)). 



^Rz 



Ri- e 



^Rz 



Ri - e 



R^ 
"elff 



is universal. Unfortunately, we have neither been able to find circuit identities to reduce the number of one- 
parameter gates below 15, nor to show that this circuit is universal. 
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In both cases, the placeholder maiked R[ can be conglomerated with another placeholder, 
leaving a circuit with 14 one-parameter placeholders. ■ 

It is a natural question whether one might do better with a different gate [7]. At least 
for the 1 + 1 + 1 + 1 subspace decomposition, the answer is no. 

Proposition 8 Fix a two-qubit gate G. Some two-qubit operators cannot be simulated, up 
to the 1 + 1 + 1 + 1 CB-measurement don't care, by a circuit with a single instance ofG. 

Proof: Compose the circuit in question with a circuit for simulating a diagonal operator. 



- b - - d 



R- 



We now merge the R, gates with the c and d placeholders; there remain 13 parameters — 
three each in the a,b,c,d placeholders and one in the controlled-/?j gate. This circuit fails 
to be universal. ■ 

In a different direction, one may ask whether one can do better by measuring in a 
different basis. 



Proposition 9 Consider the 1 + 1 + 1 + 1 measurement don 't care, M, corresponding to a 
given fixed basis. Some two-qubit operators cannot be simulated up to M by a circuit with 
a single CNOT. 

Proof: We concatenate the circuit in question with a placeholder for a diagonal operator. 



Rx-Rz-Rx^^Rz-Rx 



Rx-Rz 



Counting parameters gives 13 (the placeholder for the diagonal operator counts for three.) 
Thus this circuit cannot be universal. ■ 

Finally, we prove constructively that an arbitrary two-qubit operator can be imple- 
mented up to any CB-measurement don't care with a circuit containing two CNOT gates 
and various one-qubit gates. 
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Proposition 10 Tlie 2-qubit circuit given below is universal up to any CB-measurement 
don 't-care. 



b ^ 



R, 



^ d 



Proof: Consider a measurement with respect to any CB-subspace decomposition. The 
number and the probabilities of outcomes cannot change if we first measure along the 
1 + 1 + 1 + 1 subspace decomposition. Indeed, the number of outcomes is determined by 
the number of subspaces in the last measurement, and the probabilities of outcomes for a 
given pure state by squared norms of projections onto those subspaces. In a CB-subspace 
decomposition, the squared norm of a projection onto a 2- or 3-dimensional subspace 
equals, by the Pythagorean theorem, the sum of squared norms of projections onto the 
computational-basis vectors in that subspace. Therefore, a circuit which is universal up to 
al + 1 + 1 + 1 CB-measurement don't-care is universal up to any other CB-measurement 
don't-care, and it suffices to consider the 1 + 1 + 1 + 1 case. 

Recall that the circuit of Fig. ^is universal. As adding a reversible constant gate (e.g., 
CNOT) to the end does not affect universality, the circuit below is universal as well. 



Rx 



b d 



Observe that the right portion of this circuit simulates a diagonal operator, which pre- 
serves the subspaces spanned by the computational basis vectors. Thus, by the discussion 
earlier in the section, the left portion of this circuit is universal up to measurement in the 
computational basis. ■ 

In applications such as Quantum Key Distribution, one may not know in advance which 
basis to measure in, but rather that one will choose at random between a given pair of bases 
for measurement. To save gates in this context, one could maintain two different circuits, 
one for each type of measurement. While it may seem counterintuitive that building two 
circuits would save on gates, note that the "circuit" here may consist of classical instruc- 
tions to initiate a given laser pulse at a given time, thus we may maintain as many as we 
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like in the memory of the classical computer we are using to control the quantum system. 
At issue is the execution time, which will be smaller when applying either of two smaller 
circuits (depending on the desired measurement) rather than a common, larger circuit fol- 
lowed by one of two measurements. 

An alternative approach to saving gates in such a context is to try and find circuits 
which simulate the desired operator up to either of the possible measurements. The only 
fact we used about the computational basis in the proof of PropositionfTOlwas that operators 
expressible as C2(/(8'/?2(6))C2 are diagonal in the computational basis. Such operators are 
also diagonal in any basis in which each vector lies in either span(|0), |3)) or span(| 1), |2)). 
In particular, this includes bases of Bell states. 

Proposition 11 Two CNOT^ suffice to simulate any two-qubit operator up to any measure- 
ment in a not necessarily predisclosed basis in which each vector lies in either span{\0) , |3)) 
or span{\ 1), |2)). 

5 Conclusions 

Algorithms and lower bounds for quantum circuit synthesis have significantly advanced 
in the last two years. In particular, several universal two-qubit circuits with optimal gate 
counts are available |3l@l|5l|6lEl, and, in the general case of «-qubit circuits, asymptoti- 
cally optimal gate counts can be realized by matrix-decomposition algorithms f01fT51 . 

In this context, we recall that quantum algorithms and cryptographic protocols often 
apply measurements, known in advance, after reversible quantum circuits. This allows a 
greater variety of circuits to be functionally equivalent, and we prove that useful infor- 
mation about measurement often facilitates finding smaller circuits. Taking into account a 
known input state also decreases circuit sizes. Both cases can be viewed as circuit synthesis 
for incompletely specified operators. 

Our work has parallels in synthesis of classical irreversible logic circuits, where truth 
tables aie sometimes underspecified, and the synthesis program must complete them so as 
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to allow for smaller circuits. In other words, outputs produced for some input combinations 
can be arbitrary. Such unspecified behaviors of classical circuits ai^e traditionally called 
"don't-cares". While covered in undergraduate circuits courses, they remain a worthy 
subject of research and appear in a variety of circumstances in practice. For example, if a 
given circuit operates on outputs of another circuit, the latter may not be able to produce 
certain combinations of bits. While this cannot happen with reversible quantum circuits, 
we may nonetheless know in advance that the input state will be |0). Indeed, it may happen 
that the purpose of the circuit all along was to prepare a given state form |0). To this 
end, we point out that an n-qubit state can be prepared using 0(2") gates — which is 
asymptotically optimal — whereas 0(4") gates are necessary to simulate a generic n-qubit 
unitary operator. We also show that at most one maximally entangling gate is necessary 
and sufficient to prepare a 2-qubit state, and, in particular, that a single CNOT suffices. We 
have also shown that, if the final measurement is known to be in the computational basis, 
only two CNOT gates ai"e necessary. 
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